The Functions settings page in Control Panel allows administrators to manage a collection of settings that govern how functions behave within a specific space, with each setting controlling whether a particular capability is enabled as detailed in the sections below. To access the page, navigate to Control Panel > Functions settings for the space you want to configure.
The Extended function execution modal allows specific functions to execute with certain extended capabilities:

Because these capabilities grant functions elevated access, the ability to extend function execution provides granular control over where they are enabled through a set of allowlists configured in the modal's collapsible sections. A function must satisfy the relevant allowlists before it can publish, execute, or install with those extended capabilities. Configure the following allowlists to control which repositories, functions, and projects can use extended function execution.
The repositories in this allowlist are the only repositories in the space that can publish functions with extended execution capabilities. To add a repository, select Add and search for the repository you want to allow.
The functions in this allowlist are the only functions that execute with extended capabilities. This list is checked at execution time, so a function must remain in the allowlist to continue executing with extended capabilities. New functions published from an allowlisted repository will automatically propagate to the functions allowlist. To add a function, select Add and search for the function you want to allow.
The projects in this allowlist are the only projects where Marketplace installation succeeds for functions that have extended execution capabilities. To add a project, select Add and search for the project you want to allow.